CVE-2020-35359
HIGH NUCLEIPure-FTPd 1.0.48 - Denial of Service via Connection Limit Exhaustion
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-35359. PoCs published by xynmaps. A Nuclei detection template is also available.
AI-analyzed exploit summary This script performs a denial-of-service attack against Pure-FTPd 1.0.48 by exhausting the maximum allowed connections. It uses threading to spawn multiple FTP connections to the target server, preventing legitimate users from connecting.
Description
Pure-FTPd 1.0.48 allows remote attackers to prevent legitimate server use by making enough connections to exceed the connection limit.
Exploits (1)
This script performs a denial-of-service attack against Pure-FTPd 1.0.48 by exhausting the maximum allowed connections. It uses threading to spawn multiple FTP connections to the target server, preventing legitimate users from connecting.
Nuclei Templates (1)
product:"pure-ftpd" || cpe:"cpe:2.3:a:pureftpd:pure-ftpd"
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H